Saturday November 22, 2008 8:57 AM AEST
Latest Comments
"when i login to face book it tells me i am cookies enabled what does this mean"
by celeste | Nov 21, 2008 5:15 PM
 
"Hi this is the mail I received Brett Karpman show details Nov 17 (3 days ago) Reply Atten..."
by Rodney Churchyard | Nov 20, 2008 6:13 PM
 
"security through obscurity...shows how detached HIPAA is from reality."
by priceOfFishInChina | Nov 20, 2008 1:19 PM
 
"Umm. no. The 6.5 product is mounting the offline VM image and performing a scan for patch ..."
by eric | Nov 20, 2008 8:15 AM
 
"it's great i tried it"
by divyacharan | Nov 20, 2008 12:24 AM

Storm tries its hand at fiction

  • Email a Friend
  • Print Page
By Shaun Nichols
Jun 23, 2008 9:47 AM
Tags: Storm | tries | its | hand | at | fiction
Researchers are reporting a new round of spam messages tied to the Storm network which touch on fake, sensationalised news stories. The emails contain such headlines as 'Eiffel Tower damaged by massive earthquake' and 'Donald Trump missing, feared kidnapped.'

The bodies of the emails contain links which claim to provide further information on the story. However, the links direct to a page designed to resemble adult video site Pornotube. When users click on one of the supposed video links on the page, an executable is launched which installs the Storm malware.

"This clever social engineering technique plays on peoples inquisitiveness in news of natural disasters and celebrities," said McAfee researcher Kevin McGhee.

"The emails also follow the simple format of some text and a link that looks fairly harmless to the uneducated user."

The emails mark a deviation for Storm from its usual tactics of spamming fake articles and videos of current events and holidays. They also build on a recently-discovered attack in which the worm was spread through a fake claim about Beijing Olympics being cancelled.

"There mustn’t be much going on in the world today as the Nuwar spammers have moved from jumping on real news of natural disasters and current affairs to creating their own fictional events," noted McGhee.

"This high volume spam campaign is using some wacky subjects to lure people into clicking on the links."

Copyright © 2008 vnunet.com

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
Tripwire - Click here to win an iTouch
 
 
 
Vulnerabilities & Exploits Whitepapers